Sutter Senior Care
Disclosed Jul 22, 20233 years ago519 affectedConfirmed
The covered entity (CE), Sutter Senior Care, reported that a software application used by its business associate (BA) exposed the protected health information (PHI) of 519 individuals. The PHI involved included names, dates of birth, Social Security numbers, diagnoses, claims information, and other treatment information. The CE notified HHS, the affected individuals, and the media. In response to the breach, the CE provided complimentary credit monitoring services and the CE and BA implemented additional administrative, technical, and security safeguards to better protect PHI.
What is known
| People affected | 519 (as reported to HHS) |
|---|---|
| Disclosed | Jul 22, 2023 |
| Happened | May 28, 2023 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| California Attorney General breach notice: Sutter Senior Careoag.ca.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Sutter Senior Care (Healthcare Provider, CA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| California AGresidents of CA | Jul 22, 2023 | |
| HHS archivetotal | Jul 22, 2023 | 519 |
History of this record
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · records_basis: empty to hhs · backfill source
- 2026-09-25 · records: empty to 519 · backfill source
- 2026-09-25 · summary: empty to The covered entity (CE), Sutter Senior Care, reported that a software application used by its business associate (BA) exposed the protected health information (PHI) of 519 individuals. The PHI involved included names, dates of birth, Social · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (California AG), confirmed by California AG. Record counts are as reported. Not legal advice.